Build Expertise in SOC Operations and Cyber Incident Response
Develop the practical skills required to monitor, detect, analyse, and respond to cyber security incidents in enterprise environments. This programme provides hands-on training in Security Operations Centre (SOC) management, threat analysis, incident handling, and root cause investigation.
Programme Overview
Duration: 60 Hours
This is an advanced, hands-on course for candidates who have completed the SOC Foundation Programme or have equivalent experience. Participants will master penetration testing fundamentals, EDR and Sysmon deep-dives, SIEM deployment, threat hunting, memory forensics, Python automation, YARA rules, SOAR playbooks, and full incident response – all mapped to MITRE ATT&CK.
Who Should Attend

This programme is ideal for:
- SOC Foundation Programme graduates
- Tier 1 SOC Analysts looking to move to Tier 2/Tier 3
- Security Engineers wanting Blue Team depth
- Penetration Testers exploring the defensive perspective
- Incident Responders and Threat Hunters seeking structured upskilling
Programme Content
SOC Analyst Professional Program
Master advanced SOC skills — EDR & Sysmon deep dives, SIEM deployment, threat hunting, memory forensics, YARA rules, Python automation, and SOAR playbooks. All mapped to MITRE ATT&CK and culminating in a full multi-stage incident response capstone.
60
Hours
20+
Log with different attacks
Topics Covered
By the end of this programme, participants will be able to:
- Penetration Testing & Ethical Hacking
- Sysmon, EDR & Advanced Log Analysis
- SIEM: Build, Tune & Detect
- SOC vs Red Team Exercise
- SOC Operations: Detection, Forensics & Scripting
- Incident Response, Threat Hunting & SOAR


